[SUSE-SU-2020:3548-1] Security update for MozillaFirefox
Severity
Important
Affected Packages
45
CVEs
12
Security update for MozillaFirefox
This update for MozillaFirefox fixes the following issues:
- Firefox Extended Support Release 78.5.0 ESR (bsc#1178824)
- CVE-2020-26951: Parsing mismatches could confuse and bypass security sanitizer for chrome privileged code
- CVE-2020-16012: Variable time processing of cross-origin images during drawImage calls
- CVE-2020-26953: Fullscreen could be enabled without displaying the security UI
- CVE-2020-26956: XSS through paste (manual and clipboard API)
- CVE-2020-26958: Requests intercepted through ServiceWorkers lacked MIME type restrictions
- CVE-2020-26959: Use-after-free in WebRequestService
- CVE-2020-26960: Potential use-after-free in uses of nsTArray
- CVE-2020-15999: Heap buffer overflow in freetype
- CVE-2020-26961: DoH did not filter IPv4 mapped IP Addresses
- CVE-2020-26965: Software keyboards may have remembered typed passwords
- CVE-2020-26966: Single-word search queries were also broadcast to local network
- CVE-2020-26968: Memory safety bugs fixed in Firefox 83 and Firefox ESR 78.5
- ID
- SUSE-SU-2020:3548-1
- Severity
- important
- URL
- https://www.suse.com/support/update/announcement/2020/suse-su-20203548-1/
- Published
-
2020-11-27T11:18:56
(3 years ago) - Modified
-
2020-11-27T11:18:56
(3 years ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALAS2-2020-1565
- ALAS2-2021-1586
- ALPINE:CVE-2020-15999
- ALPINE:CVE-2020-16012
- ALPINE:CVE-2020-26951
- ALPINE:CVE-2020-26953
- ALPINE:CVE-2020-26956
- ALPINE:CVE-2020-26958
- ALPINE:CVE-2020-26959
- ALPINE:CVE-2020-26960
- ALPINE:CVE-2020-26961
- ALPINE:CVE-2020-26965
- ALPINE:CVE-2020-26966
- ALPINE:CVE-2020-26968
- ALSA-2020:4952
- ASA-202010-10
- ASA-202010-11
- ASA-202011-11
- ASA-202011-12
- ASB-A-171232105
- CISA-2021:1103
- DSA-4777-1
- DSA-4793-1
- DSA-4796-1
- DSA-4824-1
- ELSA-2020-4907
- ELSA-2020-4952
- ELSA-2020-5235
- ELSA-2020-5236
- ELSA-2020-5237
- ELSA-2020-5238
- ELSA-2020-5239
- ELSA-2020-5257
- FEDORA-2020-10ec8aca61
- FEDORA-2020-3e005ce2e0
- FEDORA-2020-6299161e89
- FEDORA-2020-6b35849edd
- FEDORA-2020-768b1690f8
- FREEBSD:458DF97F-1440-11EB-AAEC-E0D55E2A8BF9
- FREEBSD:F4722927-1375-11EB-8711-3065EC8FD3EC
- GLSA-202010-07
- GLSA-202011-12
- GLSA-202012-03
- GLSA-202012-04
- GLSA-202401-19
- MFSA-2020-50
- MFSA-2020-51
- MFSA-2020-52
- MS:CVE-2020-15999
- openSUSE-SU-2020:1718-1
- openSUSE-SU-2020:1731-1
- openSUSE-SU-2020:1734-1
- openSUSE-SU-2020:1737-1
- openSUSE-SU-2020:1744-1
- openSUSE-SU-2020:1829-1
- openSUSE-SU-2020:1952-1
- openSUSE-SU-2020:2010-1
- openSUSE-SU-2020:2012-1
- openSUSE-SU-2020:2020-1
- openSUSE-SU-2020:2021-1
- openSUSE-SU-2020:2026-1
- openSUSE-SU-2020:2031-1
- openSUSE-SU-2020:2032-1
- openSUSE-SU-2020:2055-1
- openSUSE-SU-2020:2096-1
- openSUSE-SU-2020:2187-1
- openSUSE-SU-2020:2315-1
- openSUSE-SU-2021:1134-1
- RHSA-2020:4351
- RHSA-2020:4907
- RHSA-2020:4952
- RHSA-2020:5235
- RHSA-2020:5236
- RHSA-2020:5237
- RHSA-2020:5238
- RHSA-2020:5239
- RHSA-2020:5257
- RLSA-2020:4952
- SSA:2020-294-01
- SUSE-SU-2020:2995-1
- SUSE-SU-2020:2998-1
- SUSE-SU-2020:3383-1
- SUSE-SU-2020:3458-1
- SUSE-SU-2020:3528-1
- USN-4593-1
- USN-4593-2
- USN-4637-1
- USN-4637-2
- USN-4647-1
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=5 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=4 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=3 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=2 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=5 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=4 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=3 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=2 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=5 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=4 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=3 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=2 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=5 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=4 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=3 | suse | MozillaFirefox | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=5 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=4 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=3 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=2 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=5 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=4 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=3 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=2 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=5 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=4 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=3 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=2 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=5 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=4 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=3 | suse | MozillaFirefox-translations-common | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=5 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=4 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=3 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=2 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=5 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=4 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=3 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=2 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=5 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=4 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=3 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=2 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-12&sp=5 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-12&sp=4 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-12&sp=3 | suse | MozillaFirefox-devel | < 78.5.0-112.36.1 | sles-12 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |